Threat Exposure Management Analyst

Fiserv

Quick summary

Work type
On-site
Location
Berkeley Heights, NJ · Alpharetta, GA · Coral Springs, FL
Salary
$110,000–$186,000 / yr
Posted
1 day ago

Market check

Salary context

Below market

How this pay compares to similar roles

Similar $169k
This role $148k
$99k most similar roles pay here $209k

This role pays less than 67% of similar roles. Most pay $142,400–$195,721 — the shaded band above. At the midpoint, this role pays about $148k versus about $169k for comparable roles.

Based on 239 similar postings.

Employer

About Fiserv

Fiserv is a global leader in financial services technology, providing core banking platforms, payment processing, digital banking, and merchant acquiring solutions to financial institutions and businesses. Industry: Financial Technology & Payments

Fiserv currently has 83 open roles on FindRole.

Listed pay typically runs $110,000–$186,000 across 53 roles with salary data.

Most-posted roles

View all roles at Fiserv

At a glance

TL;DR · Threat Exposure Management Analyst

As a Threat Exposure Management Analyst in the Attack Surface Management team at an advanced cybersecurity firm, you will play a pivotal role in evolving the organization's security posture from traditional vulnerability management to a sophisticated exposure management approach. Your daily tasks include analyzing attack paths towards critical assets, building and operating a threat-informed prioritization model that ranks exposures based on real-world risk factors such as exploit availability and active campaigns, and mapping these exposures to business-critical services to ensure remediation priorities align with business impact rather than technical severity alone. You will also validate the exploitability of identified risks using breach-and-attack simulation tools and collaborate closely with cross-functional teams like Endpoint, Network, Cloud, and IAM to drive effective remediation strategies. The ideal candidate has over eight years of experience in vulnerability management or related fields, a strong grasp of attack surface management frameworks such as Gartner CTEM and MITRE ATT&CK, and the ability to communicate complex technical risks in business terms for executive audiences.

What you'll do

  • Analyze how individual exposures chain into viable attack paths toward critical assets.
  • Build and operate a threat-informed prioritization model to rank exposures by real-world risk.
  • Validate whether prioritized exposures are exploitable and reachable using various security testing methods.
  • Assess the effectiveness of compensating controls before mandating remediation based on red-team findings.
  • Drive remediation across infrastructure and security partner teams for risks that cross organizational boundaries.

What we're looking for

  • 8+ years of experience in vulnerability management or related cybersecurity disciplines.
  • Proven ability to lead security programs with governance and cross-functional stakeholder engagement.
  • Strong capability in assessing attack paths, exploitability, and business impact beyond CVSS scoring.
  • Practical experience incorporating threat intelligence and exploit data into prioritization decisions.
  • Solid understanding of vulnerabilities across various environments and their combination into attack paths.
  • Demonstrated skill in driving remediation and influencing cross-functional teams without direct authority.
  • Familiarity with Gartner CTEM model, MITRE ATT&CK, CVSS, EPSS, and CISA KEV standards.

More like this

Similar roles

Vulnerability Analyst

Booz Allen Hamilton

Washington, District of Columbia 2 days ago $99,000$225,000
Tenable Qualys CVSS CWE NVD CI/CD Kubernetes AWS Python PostgreSQL Git Docker Prometheus Grafana NIST 800-53 CEH CySA+ CASP+ CISSP

Vulnerability Analyst

Cboe Global Markets

Chicago, IL 4 days ago $93,500$121,000
Qualys Tenable Rapid7 Wiz Reco Obsidian AppOmni Aqua Python Power BI Sigma Snowflake Huffle Jira Confluence AI Linux Unix Windows Network devices Atlassian Jira Atlassian Confluence
Hybrid

Sr. Vulnerability Analyst

Cboe Global Markets

Chicago, IL 4 days ago $121,550$157,300
Qualys Tenable Rapid7 Wiz Reco Obsidian AppOmni Aqua Python ChatGPT Claude Code Cursor N8N Linux Unix Windows Active Directory Entra ID Microsoft Defender for Endpoint Defender for Identity Defender for Cloud Apps Purview DLP Intune Atlassian Jira Confluence Power BI Sigma Snowflake Huffle
Hybrid

Vulnerability and Exposure Management Program Manager

US Bank

Minneapolis, MN 10 days ago $170,255$200,300
CI/CD AI Kubernetes Terraform Python PostgreSQL Prometheus Grafana AWS Azure Google Cloud Docker GitLab Jira Confluence Splunk ServiceNow Snowflake Tableau Regulatory Compliance ISO 27001 PCI DSS SOX NIST Cybersecurity Framework
Hybrid

Principal Advanced Threat Response Analyst

Hewlett Packard Enterprise

Remote (Locations All, Texas, US) 68 days ago $120,500$276,500
MITRE ATT&CK Python Splunk Sentinel CrowdStrike Carbon Black Defender ATP Mitre Attck AWS Azure GCP PowerShell Bash CI/CD SIEM EDR Red Team Offensive Security Cobalt Strike Metasploit Purple Team Exercises
Remote

Principal Applied Threat Intelligence Analyst

Microsoft

Redmond, WA today $142,800$274,800
MITRE_ATT&CK Python PowerShell C C++ Docker Kubernetes AWS Azure GCP CI/CD Terraform PostgreSQL MongoDB Redis Git Jenkins Prometheus Grafana Splunk MSSecurity